An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to cause a Denial of Service (DoS), which causes the l2cpd process to crash by sending a specific TLV.
The l2cpd process is responsible for layer 2 control protocols, such as STP, RSTP, MSTP, VSTP, ERP, and LLDP. The impact of the l2cpd crash is reinitialization of STP protocols (RSTP, MSTP or VSTP), and MVRP and ERP, leading to a Denial of Service. Continued receipt and processing of this specific TLV will create a sustained Denial of Service (DoS) condition. This issue affects:
Junos OS: all versions before 20.4R3-S9, from 21.2 before 21.2R3-S7, from 21.3 before 21.3R3-S5, from 21.4 before 21.4R3-S4, from 22.1 before 22.1R3-S4, from 22.2 before 22.2R3-S2, from 22.3 before 22.3R2-S2, 22.3R3-S1, from 22.4 before 22.4R2-S2, 22.4R3, from 23.2 before 23.2R1-S1, 23.2R2;
Junos OS Evolved: all versions before 21.2R3-S7,
from 21.3 before 21.3R3-S5-EVO, from 21.4 before 21.4R3-S5-EVO, from 22.1 before 22.1R3-S4-EVO, from 22.2 before 22.2R3-S2-EVO, from 22.3 before 22.3R2-S2-EVO, 22.3R3-S1-EVO, from 22.4 before 22.4R2-S2-EVO, 22.4R3-EVO, from 23.2 before 23.2R1-S1-EVO, 23.2R2-EVO.
| Software | From | Fixed in |
|---|---|---|
| juniper / junos | 20.4-r1 | 20.4-r1.x |
| juniper / junos | 20.4-r1-s1 | 20.4-r1-s1.x |
| juniper / junos | 20.4-r2 | 20.4-r2.x |
| juniper / junos | 21.2-r1 | 21.2-r1.x |
| juniper / junos | 20.4-r2-s1 | 20.4-r2-s1.x |
| juniper / junos_os_evolved | 21.2-r1 | 21.2-r1.x |
| juniper / junos | 20.4 | 20.4.x |
| juniper / junos | 20.4-r2-s2 | 20.4-r2-s2.x |
| juniper / junos | 20.4-r3 | 20.4-r3.x |
| juniper / junos | 20.4-r3-s1 | 20.4-r3-s1.x |
| juniper / junos | 21.2 | 21.2.x |
| juniper / junos | 21.2-r1-s1 | 21.2-r1-s1.x |
| juniper / junos | 21.2-r2 | 21.2-r2.x |
| juniper / junos | 21.3-r1 | 21.3-r1.x |
| juniper / junos | 21.3-r2 | 21.3-r2.x |
| juniper / junos_os_evolved | 21.2-r1-s1 | 21.2-r1-s1.x |
| juniper / junos_os_evolved | 21.2-r2 | 21.2-r2.x |
| juniper / junos_os_evolved | 21.3-r1 | 21.3-r1.x |
| juniper / junos | 20.4-r3-s2 | 20.4-r3-s2.x |
| juniper / junos | 21.2-r1-s2 | 21.2-r1-s2.x |
| juniper / junos | 21.2-r2-s1 | 21.2-r2-s1.x |
| juniper / junos | 21.2-r2-s2 | 21.2-r2-s2.x |
| juniper / junos | 21.2-r3 | 21.2-r3.x |
| juniper / junos | 21.3-r1-s1 | 21.3-r1-s1.x |
| juniper / junos | 21.3-r1-s2 | 21.3-r1-s2.x |
| juniper / junos | 21.3-r2-s1 | 21.3-r2-s1.x |
| juniper / junos | 21.3-r2-s2 | 21.3-r2-s2.x |
| juniper / junos | 21.3-r3 | 21.3-r3.x |
| juniper / junos | 21.3-r3-s1 | 21.3-r3-s1.x |
| juniper / junos | 21.4-r1 | 21.4-r1.x |
| juniper / junos | 21.4-r1-s1 | 21.4-r1-s1.x |
| juniper / junos | 21.4-r1-s2 | 21.4-r1-s2.x |
| juniper / junos | 21.4-r2 | 21.4-r2.x |
| juniper / junos | 22.1-r1 | 22.1-r1.x |
| juniper / junos_os_evolved | - | 21.2 |
| juniper / junos_os_evolved | 21.2 | 21.2.x |
| juniper / junos_os_evolved | 21.2-r1-s2 | 21.2-r1-s2.x |
| juniper / junos_os_evolved | 21.2-r2-s1 | 21.2-r2-s1.x |
| juniper / junos_os_evolved | 21.2-r2-s2 | 21.2-r2-s2.x |
| juniper / junos_os_evolved | 21.3-r1-s1 | 21.3-r1-s1.x |
| juniper / junos_os_evolved | 21.4-r1 | 21.4-r1.x |
| juniper / junos_os_evolved | 21.4-r1-s1 | 21.4-r1-s1.x |
| juniper / junos | - | 20.4 |
| juniper / junos | 20.4-r3-s3 | 20.4-r3-s3.x |
| juniper / junos | 20.4-r3-s4 | 20.4-r3-s4.x |
| juniper / junos | 20.4-r3-s5 | 20.4-r3-s5.x |
| juniper / junos | 21.2-r3-s1 | 21.2-r3-s1.x |
| juniper / junos | 21.2-r3-s2 | 21.2-r3-s2.x |
| juniper / junos | 21.3 | 21.3.x |
| juniper / junos | 21.3-r3-s2 | 21.3-r3-s2.x |
| juniper / junos | 21.4 | 21.4.x |
| juniper / junos | 21.4-r2-s1 | 21.4-r2-s1.x |
| juniper / junos | 21.4-r2-s2 | 21.4-r2-s2.x |
| juniper / junos | 21.4-r3 | 21.4-r3.x |
| juniper / junos | 21.4-r3-s1 | 21.4-r3-s1.x |
| juniper / junos | 22.1-r1-s1 | 22.1-r1-s1.x |
| juniper / junos | 22.1-r1-s2 | 22.1-r1-s2.x |
| juniper / junos | 22.1-r2 | 22.1-r2.x |
| juniper / junos | 22.1-r2-s2 | 22.1-r2-s2.x |
| juniper / junos | 22.1-r3 | 22.1-r3.x |
| juniper / junos | 22.1-r3-s1 | 22.1-r3-s1.x |
| juniper / junos | 22.2-r1 | 22.2-r1.x |
| juniper / junos | 22.2-r1-s1 | 22.2-r1-s1.x |
| juniper / junos | 22.2-r1-s2 | 22.2-r1-s2.x |
| juniper / junos | 22.2-r2 | 22.2-r2.x |
| juniper / junos | 22.3-r1 | 22.3-r1.x |
| juniper / junos | 22.3-r2 | 22.3-r2.x |
| juniper / junos_os_evolved | 21.2-r3 | 21.2-r3.x |
| juniper / junos_os_evolved | 21.2-r3-s1 | 21.2-r3-s1.x |
| juniper / junos_os_evolved | 21.2-r3-s2 | 21.2-r3-s2.x |
| juniper / junos_os_evolved | 21.2-r3-s3 | 21.2-r3-s3.x |
| juniper / junos_os_evolved | 21.3 | 21.3.x |
| juniper / junos_os_evolved | 21.3-r2 | 21.3-r2.x |
| juniper / junos_os_evolved | 21.3-r2-s1 | 21.3-r2-s1.x |
| juniper / junos_os_evolved | 21.3-r2-s2 | 21.3-r2-s2.x |
| juniper / junos_os_evolved | 21.3-r3 | 21.3-r3.x |
| juniper / junos_os_evolved | 21.4 | 21.4.x |
| juniper / junos_os_evolved | 21.4-r1-s2 | 21.4-r1-s2.x |
| juniper / junos_os_evolved | 21.4-r2 | 21.4-r2.x |
| juniper / junos_os_evolved | 21.4-r2-s1 | 21.4-r2-s1.x |
| juniper / junos_os_evolved | 21.4-r2-s2 | 21.4-r2-s2.x |
| juniper / junos_os_evolved | 21.4-r3 | 21.4-r3.x |
| juniper / junos_os_evolved | 22.1-r1 | 22.1-r1.x |
| juniper / junos_os_evolved | 22.1-r1-s1 | 22.1-r1-s1.x |
| juniper / junos_os_evolved | 22.1-r1-s2 | 22.1-r1-s2.x |
| juniper / junos_os_evolved | 22.1-r2 | 22.1-r2.x |
| juniper / junos_os_evolved | 22.2-r1 | 22.2-r1.x |
| juniper / junos_os_evolved | 22.2-r1-s1 | 22.2-r1-s1.x |
| juniper / junos_os_evolved | 22.2-r2 | 22.2-r2.x |
| juniper / junos_os_evolved | 22.3-r1 | 22.3-r1.x |
| juniper / junos | 20.4-r3-s6 | 20.4-r3-s6.x |
| juniper / junos | 20.4-r3-s7 | 20.4-r3-s7.x |
| juniper / junos | 20.4-r3-s8 | 20.4-r3-s8.x |
| juniper / junos | 21.2-r3-s3 | 21.2-r3-s3.x |
| juniper / junos | 21.2-r3-s4 | 21.2-r3-s4.x |
| juniper / junos | 21.2-r3-s5 | 21.2-r3-s5.x |
| juniper / junos | 21.2-r3-s6 | 21.2-r3-s6.x |
| juniper / junos | 21.3-r3-s3 | 21.3-r3-s3.x |
| juniper / junos | 21.3-r3-s4 | 21.3-r3-s4.x |
| juniper / junos | 21.4-r3-s2 | 21.4-r3-s2.x |
| juniper / junos | 21.4-r3-s3 | 21.4-r3-s3.x |
| juniper / junos | 22.1 | 22.1.x |
| juniper / junos | 22.1-r2-s1 | 22.1-r2-s1.x |
| juniper / junos | 22.1-r3-s2 | 22.1-r3-s2.x |
| juniper / junos | 22.1-r3-s3 | 22.1-r3-s3.x |
| juniper / junos | 22.2 | 22.2.x |
| juniper / junos | 22.2-r2-s1 | 22.2-r2-s1.x |
| juniper / junos | 22.2-r2-s2 | 22.2-r2-s2.x |
| juniper / junos | 22.2-r3 | 22.2-r3.x |
| juniper / junos | 22.2-r3-s1 | 22.2-r3-s1.x |
| juniper / junos | 22.3 | 22.3.x |
| juniper / junos | 22.3-r1-s1 | 22.3-r1-s1.x |
| juniper / junos | 22.3-r1-s2 | 22.3-r1-s2.x |
| juniper / junos | 22.3-r2-s1 | 22.3-r2-s1.x |
| juniper / junos | 22.4 | 22.4.x |
| juniper / junos | 22.4-r1 | 22.4-r1.x |
| juniper / junos | 22.4-r1-s1 | 22.4-r1-s1.x |
| juniper / junos | 22.4-r1-s2 | 22.4-r1-s2.x |
| juniper / junos | 22.4-r2 | 22.4-r2.x |
| juniper / junos | 22.4-r2-s1 | 22.4-r2-s1.x |
| juniper / junos | 23.2 | 23.2.x |
| juniper / junos | 23.2-r1 | 23.2-r1.x |
| juniper / junos_os_evolved | 21.2-r3-s4 | 21.2-r3-s4.x |
| juniper / junos_os_evolved | 21.2-r3-s5 | 21.2-r3-s5.x |
| juniper / junos_os_evolved | 21.2-r3-s6 | 21.2-r3-s6.x |
| juniper / junos_os_evolved | 21.3-r3-s1 | 21.3-r3-s1.x |
| juniper / junos_os_evolved | 21.3-r3-s2 | 21.3-r3-s2.x |
| juniper / junos_os_evolved | 21.3-r3-s3 | 21.3-r3-s3.x |
| juniper / junos_os_evolved | 21.3-r3-s4 | 21.3-r3-s4.x |
| juniper / junos_os_evolved | 21.4-r3-s1 | 21.4-r3-s1.x |
| juniper / junos_os_evolved | 21.4-r3-s2 | 21.4-r3-s2.x |
| juniper / junos_os_evolved | 21.4-r3-s3 | 21.4-r3-s3.x |
| juniper / junos_os_evolved | 21.4-r3-s4 | 21.4-r3-s4.x |
| juniper / junos_os_evolved | 22.1 | 22.1.x |
| juniper / junos_os_evolved | 22.1-r2-s1 | 22.1-r2-s1.x |
| juniper / junos_os_evolved | 22.1-r3 | 22.1-r3.x |
| juniper / junos_os_evolved | 22.1-r3-s1 | 22.1-r3-s1.x |
| juniper / junos_os_evolved | 22.1-r3-s2 | 22.1-r3-s2.x |
| juniper / junos_os_evolved | 22.1-r3-s3 | 22.1-r3-s3.x |
| juniper / junos_os_evolved | 22.2 | 22.2.x |
| juniper / junos_os_evolved | 22.2-r1-s2 | 22.2-r1-s2.x |
| juniper / junos_os_evolved | 22.2-r2-s1 | 22.2-r2-s1.x |
| juniper / junos_os_evolved | 22.2-r2-s2 | 22.2-r2-s2.x |
| juniper / junos_os_evolved | 22.2-r3 | 22.2-r3.x |
| juniper / junos_os_evolved | 22.2-r3-s1 | 22.2-r3-s1.x |
| juniper / junos_os_evolved | 22.3 | 22.3.x |
| juniper / junos_os_evolved | 22.3-r1-s1 | 22.3-r1-s1.x |
| juniper / junos_os_evolved | 22.3-r1-s2 | 22.3-r1-s2.x |
| juniper / junos_os_evolved | 22.3-r2 | 22.3-r2.x |
| juniper / junos_os_evolved | 22.3-r2-s1 | 22.3-r2-s1.x |
| juniper / junos_os_evolved | 22.4 | 22.4.x |
| juniper / junos_os_evolved | 22.4-r1 | 22.4-r1.x |
| juniper / junos_os_evolved | 22.4-r1-s1 | 22.4-r1-s1.x |
| juniper / junos_os_evolved | 22.4-r1-s2 | 22.4-r1-s2.x |
| juniper / junos_os_evolved | 22.4-r2 | 22.4-r2.x |
| juniper / junos_os_evolved | 22.4-r2-s1 | 22.4-r2-s1.x |
| juniper / junos_os_evolved | 23.2 | 23.2.x |
| juniper / junos_os_evolved | 23.2-r1 | 23.2-r1.x |